Privacy Policy
Last Updated: 9/8/2025
Effective Date: 9/8/2025
1. Introduction
Brightech ("we," "us," or "our") respects your privacy and is committed to protecting your personal data. This privacy policy explains how we collect, use, disclose, and safeguard your information when you visit our website or use our services.
2. Information We Collect
2.1 Information You Provide
We collect information that you voluntarily provide to us, including:
- Contact information (name, email address, phone number, company name)
- Messages and inquiries submitted through our contact form
- Professional information when you engage our services
- Any other information you choose to provide
2.2 Automatically Collected Information
When you visit our website, we may automatically collect:
- IP address and geographic location
- Browser type and version
- Operating system
- Referring website
- Pages visited and time spent on our site
- Click-through rates and navigation patterns
3. How We Use Your Information
We use the collected information for the following purposes:
- To respond to your inquiries and provide requested services
- To communicate with you about our services and updates
- To improve our website and service offerings
- To analyze website usage and optimize user experience
- To comply with legal obligations
- To protect against fraudulent or illegal activity
4. Data Security Measures
We implement appropriate technical and organizational security measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include:
- SSL/TLS encryption for data transmission
- Regular security assessments and updates
- Access controls and authentication protocols
- Employee training on data protection
- Secure data storage and backup procedures
5. HIPAA Compliance Statement
For healthcare clients and projects involving Protected Health Information (PHI), we maintain full HIPAA compliance. We will enter into Business Associate Agreements (BAAs) as required and implement appropriate safeguards to protect PHI in accordance with HIPAA regulations.
We do not collect, store, or process PHI through our website. Any PHI shared during client engagements is handled separately under strict HIPAA protocols.
6. Cookie Policy
Our website currently does not use cookies. We collect basic analytics through our content delivery network which tracks request data at the server level without placing any cookies on your device.
If we implement cookies in the future for enhanced functionality or analytics, we will update this policy and request your consent where required by law.
7. Data Sharing and Disclosure
We do not sell, rent, or trade your personal information. We may share your information only in the following circumstances:
- With your explicit consent
- To comply with legal obligations or court orders
- To protect our rights, property, or safety
- With service providers who assist in our operations (under confidentiality agreements)
- In connection with a merger, acquisition, or sale of assets
8. Your Rights (GDPR/CCPA)
Depending on your location, you may have the following rights regarding your personal data:
- Access: Request a copy of your personal data
- Correction: Request correction of inaccurate data
- Deletion: Request deletion of your personal data
- Portability: Receive your data in a portable format
- Objection: Object to certain processing of your data
- Restriction: Request restricted processing of your data
- Withdraw consent: Withdraw previously given consent
To exercise these rights, please contact us at privacy@brightech.net.
9. Data Retention
We retain personal information only for as long as necessary to fulfill the purposes outlined in this policy, unless a longer retention period is required by law. Contact form submissions are typically retained for up to 2 years unless associated with an active client engagement.
10. Children's Privacy
Our services are not directed to individuals under 18 years of age. We do not knowingly collect personal information from children. If we become aware that we have collected data from a child, we will take steps to delete such information.
11. International Data Transfers
Your information may be transferred to and processed in the United States. By using our services, you consent to such transfer and processing in accordance with this privacy policy.
12. Third-Party Links
Our website may contain links to third-party websites. We are not responsible for the privacy practices of these external sites. We encourage you to review their privacy policies before providing any personal information.
13. Changes to This Policy
We may update this privacy policy from time to time. Changes will be posted on this page with an updated revision date. For significant changes, we may provide additional notice via email or website announcement.
14. Contact Information
For questions, concerns, or requests regarding this privacy policy or our data practices, please contact us:
BrightechPrivacy Officer
Email: privacy@brightech.net
General: info@brightech.net
15. California Privacy Rights
California residents have additional rights under the California Consumer Privacy Act (CCPA). You may request information about our data collection practices and exercise your rights by contacting us at the above email addresses.
16. EU Data Protection
For EU residents, we process data in accordance with the General Data Protection Regulation (GDPR). Our lawful basis for processing includes consent, legitimate interests, and contractual obligations.